Air India passenger data breach reveals SITA hack worse than first thought – TechCrunch

Air India passenger data breach reveals SITA hack worse than first thought – TechCrunch

Three months after air transport data giant SITA reported a data breach, we are still learning about the damage. Air India said this week that personal data of about 4.5 million passengers had been compromised following the incident at SITA, Indian flag carrier airline’s data processor. The stolen information included passengers’ names, credit card details,…

Tulsa Promises Recovery, Not Ransom Paying

Tulsa Promises Recovery, Not Ransom Paying

Critical Infrastructure Security , Fraud Management & Cybercrime , Malware as-a-Service Mayor Says 2018 Atlanta Ransom Attack Served Notice ‘That We Needed to Up Our Game’ Mathew J. Schwartz (euroinfosec) • May 24, 2021     G.T. Bynum, mayor of Tulsa, Oklahoma, pictured at a 2019 event (Photo: Naval Surface Warriors via Flickr/CC) “Ransomware attackers…

Insurance Firm CNA Financial Reportedly Paid Hackers $40 Million in Ransom

Insurance Firm CNA Financial Reportedly Paid Hackers $40 Million in Ransom

U.S. insurance giant CNA Financial reportedly paid $40 million to a ransomware gang to recover access to its systems following an attack in March, making it one of the most expensive ransoms paid to date. The development was first reported by Bloomberg, citing “people with knowledge of the attack.” The adversary that staged the intrusion…

Credit Card info of Air India fliers leaked in Cyber Attack

Credit Card info of Air India fliers leaked in Cyber Attack

Credit Card info of Air India fliers leaked in Cyber Attack | IT Security News Android App Android App with push notifications Sponsors Endpoint Cybersecurity www.endpoint-cybersecurity.com – Consulting in building your security products– Employee awareness training– Security tests for applications and pentesting… and more. Daily Summary Categories CategoriesSelect Category(ISC)2 Blog  (323)(ISC)2 Blog infosec  (13)(ISC)² Blog  (360)2020-12-08 – Files…

Android Apps Expose Sensitive Data Due to Misconfigured Third-Party Services

Android Apps Expose Sensitive Data Due to Misconfigured Third-Party Services

Researchers at cybersecurity firm Check Point discovered that many Android applications publicly expose sensitive user data through misconfigured third-party services. The research involved the analysis of 23 Android applications and revealed issues related to real-time databases, cloud storage keys, and push notifications. The exposed data, which pertains to more than 100 million Android users, includes…

Researchers Link CryptoCore Attacks On Cryptocurrency Exchanges to North Korea

Researchers Link CryptoCore Attacks On Cryptocurrency Exchanges to North Korea

Researchers Link CryptoCore Attacks On Cryptocurrency Exchanges to North Korea | IT Security News 24. May 2021 This article has been indexed from The Hacker News State-sponsored hackers affiliated with North Korea have been behind a slew of attacks on cryptocurrency exchanges over the past three years, new evidence has revealed.Attributing the attack with “medium-high”…

Conti Ransomware Gang Hit 16 US Health and Emergency Networks, FBI Says

Conti Ransomware Gang Hit 16 US Health and Emergency Networks, FBI Says

The Federal Bureau of Investigation said that the same group of online extortionists blamed for striking the Irish health system last week have also hit at least 16 US medical and first response networks in the past year. In an alert made public Thursday by the American Hospital Association, the FBI said the cybercriminals using…

Researchers Link CryptoCore Attacks On Cryptocurrency Exchanges to North Korea

Researchers Link CryptoCore Attacks On Cryptocurrency Exchanges to North Korea

State-sponsored hackers affiliated with North Korea have been behind a slew of attacks on cryptocurrency exchanges over the past three years, new evidence has revealed. Attributing the attack with “medium-high” likelihood to the Lazarus Group (aka APT38 or Hidden Cobra), researchers from Israeli cybersecurity firm ClearSky said the campaign, dubbed “CryptoCore,” targeted crypto exchanges in…

StrRAT Masquerades as Ransomware – InfoRiskToday

StrRAT Masquerades as Ransomware – InfoRiskToday

Cybercrime , Fraud Management & Cybercrime , Social Engineering Microsoft Says Spam Campaign Uses Updated Variant Prajeet Nair (@prajeetspeaks) • May 24, 2021     If the “Outgoing Payments” PDF is clicked, it downloads the StrRAT. (Source: Microsoft) Microsoft is warning about a spam campaign that uses an updated variant of Java-based StrRAT malware that…